Firewalls with Filtering?

Discussion in 'Networking' started by dwright1542, Jun 12, 2018.

  1. dwright1542

    dwright1542 Active Member

    Joined:
    Dec 26, 2015
    Messages:
    319
    Likes Received:
    66
    I've been using Sonicwalls for ages. Particularly for content filtering, Malware, and edge level AV. However, small clients are getting fast enough (1Gb) connections that even mid level Sonicwalls aren't remotely fast enough. And the cost for maintaining the large ones are prohibitive. So what about replacing the Sonicwall value add stuff with something like Cisco Umbrella, or something else? (FWIW, to get Gig DPI throughput, you'd need an NSA5600). That's not in the budget of a 30 person company.

    I do use centralized management, so I can't go the open source route. I don't mind keeping the SW for VPN termination and NAT, it's the services that are the problem.

    I asked this question awhile back, it's now become a real issue for clients.

    https://forums.servethehome.com/index.php?threads/massive-firewall-thoughts.15048/


    Thoughts?
     
    #1
    Last edited: Jun 12, 2018
  2. CreoleLakerFan

    CreoleLakerFan Active Member

    Joined:
    Oct 29, 2013
    Messages:
    453
    Likes Received:
    164
  3. dwright1542

    dwright1542 Active Member

    Joined:
    Dec 26, 2015
    Messages:
    319
    Likes Received:
    66
    Ugh. $1000/year for services, maybe? That's a shoot from the hip though. I think I could make a case for that. I can tell you that the sonicwall level needed to handle it is around $2500/yr, which is NOT in the budget.
     
    #3
  4. Jannis Jacobsen

    Jannis Jacobsen Active Member

    Joined:
    Mar 19, 2016
    Messages:
    223
    Likes Received:
    34
    would sophos utm or sophos xg fit the requirements?
    sophos sg115 totalprotect 3-year is about $1280
     
    #4
  5. dwright1542

    dwright1542 Active Member

    Joined:
    Dec 26, 2015
    Messages:
    319
    Likes Received:
    66
    Yeah, they are on the list, but not really cheap enough to change away from sonicwall. I think I'm still in the same boat as a year ago.
     
    #5
  6. Jannis Jacobsen

    Jannis Jacobsen Active Member

    Joined:
    Mar 19, 2016
    Messages:
    223
    Likes Received:
    34
    If the company cannot afford to budget $1.20 a month pr.user for 3 years, I’d ask them to reconsider :)

    -j
     
    #6
  7. dwright1542

    dwright1542 Active Member

    Joined:
    Dec 26, 2015
    Messages:
    319
    Likes Received:
    66
    Except a 115 won't come remotely close to doing 1G UTM. (I'd go XG anyway) Really need a XG230. That's my whole issue.
     
    #7
  8. NashBrydges

    NashBrydges Member

    Joined:
    Apr 30, 2015
    Messages:
    65
    Likes Received:
    14
    You may not want to go the open source route but not sure you'd have a choice with that budget. That being said, Untangle offers central UTM/Firewall management. I can't speak to how effective it is since I've not used it but I know the central management is available and called Command Center.
     
    #8
  9. Evan

    Evan Well-Known Member

    Joined:
    Jan 6, 2016
    Messages:
    2,037
    Likes Received:
    287
    1G UTM costs $$
    Reason is also that real big business is who actually consumes proper 1G.

    Just because you have a 1G connection does not mean you really ever use close to 100% of its capacity, reality is a solution that will do say 150M UTM will probably be fine and then the smaller Sophos, Fortinet, etc products should work fine.
     
    #9
Similar Threads: Firewalls Filtering
Forum Title Date
Networking Two firewalls AS VM on A1SAM-2550F Dec 19, 2016
Networking Internet firewall - spam/parental/content filtering - suggestions? Jun 29, 2016
Networking Create your own router/firewall/content filtering/protection for free Sep 25, 2013

Share This Page